Skip to content

Harden Debian NVIDIA installer - #7

Merged
dennishilk merged 1 commit into
mainfrom
agent/maintenance-2026-08-31
Aug 31, 2026
Merged

dennishilk merged 1 commit into
mainfrom
agent/maintenance-2026-08-31

Conversation

@dennishilk

Copy link
Copy Markdown
Owner

Summary

  • release installer v1.3.0 for Debian 12/13 on amd64 and arm64
  • recognize both classic APT .list files and deb822 .sources
  • install the architecture header metapackage and exact running-kernel headers when available
  • stop killing package-manager processes, deleting persistent lock files, erasing DKMS state, or forcing Xorg snippets
  • use Debian-appropriate Secure Boot guidance and NVIDIA's official latest.txt metadata
  • fix GitHub language detection and add Bash/ShellCheck CI
  • refresh the README and troubleshooting guidance

This addresses the Debian 12 CUDA report in #1 and incorporates the valid intent of #6 without dropping exact running-kernel headers.

Validation

  • bash -n install-nvidia-cuda.sh
  • ShellCheck 0.9.0
  • git diff --check

- support deb822 APT sources and architecture header metapackages
- avoid unsafe package-manager, DKMS, and Xorg cleanup
- refresh Secure Boot and official NVIDIA download handling
- document supported systems and add shell checks
@dennishilk
dennishilk merged commit ab981e2 into main Aug 31, 2026
2 checks passed
This was referenced Aug 31, 2026

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 54d7e2c467

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread install-nvidia-cuda.sh
LATEST_LINE="$(curl -fsSL https://download.nvidia.com/XFree86/Linux-x86_64/latest.txt)" || die "Could not fetch NVIDIA driver metadata."
read -r LATEST RUN_PATH _ <<<"${LATEST_LINE}"
[[ "${LATEST}" =~ ^[0-9]+(\.[0-9]+)+$ ]] || die "NVIDIA returned an invalid driver version: ${LATEST:-empty}"
[[ "${RUN_PATH}" == "${LATEST}/NVIDIA-Linux-x86_64-${LATEST}.run" ]] || die "NVIDIA returned an unexpected download path."

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Badge Accept NVIDIA's filename-only latest.txt entry

When option 5 receives NVIDIA's standard <version> <filename> response, such as 580.126.09 NVIDIA-Linux-x86_64-580.126.09.run, this comparison expects the second field to include a version directory and therefore always aborts. Because remove_nvidia has already purged the existing Debian driver, the user is left without a driver; validate the filename and construct the download URL as ${LATEST}/${RUN_PATH} instead.

Useful? React with 👍 / 👎.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant